PHP Static-Eval Exploitation | HackTheBox Baby Breaking Grad
We covered basic white box penetration test by inspecting, analyzing and exploiting a web application source code…
We covered basic white box penetration test by inspecting, analyzing and exploiting a web application source code…
We covered a scenario where we performed a vulnerability scanning with Nikto on a vulnerable windows machine…
We covered the recent Microsoft Outlook NTLM Vulnerability CVE-2023-23397 that could lead to NTLM hash leak if…
We covered a scenario that demonstrates python exploitation through Eval function. Additionally we covered an example of…
We covered a demo of XML External Entity Injection along with privilege escalation through exploiting Python eval…
We covered HackTheBox Remote machine as part of CREST CRT (Registered Penetration Tester) Track. We demonstrated Umbraco…
We covered HackTheBox GoodGames as part of CREST CRT track. We went over SQL Injection, server side…
We covered HackTheBox Active as part of CREST CRT (registered penetration tester track). We went through Exploiting…
We covered Insecure Direct Object Reference vulnerability exploitation along with Python privilege escalation as part of HackTheBox…
We covered HackTheBox FriendZone as part of CREST CRT track. We went over DNS zone transfer, SMB…
We enumerate NFS shares, and upload a Web Shell . We also performed Linux privilege escalation by…
RedCross From HackTheBox was like a maze, with several different paths to achieve shell and root. We’ll…
TryHackMe Opacity is an easy machine that can help you in the penetration testing learning process. We…
We come upon a website that lists some fictional firm employees’ entire names. We create some usernames…
We covered information security management concepts such as information security governance, information security regulations, risk management and…
We covered another file upload vulnerability where the vulnerable code contained a PHP function exif_imagetype to check…
We explored encryption and secure remote access as methods to secure and harden Linux. Encryption makes data…
We covered a basic introduction to Linux firewalls IPTABLES and UFW as a means to ensure security….
We covered User Accounts Security best practices such as disabling root account login, setting password expiry date,…
We covered Linux enumeration to identify possible weaknesses vulnerabilities in order to achieve privilege escalation. This was…